cbcvebase.
CVE-2022-40134
published 2023-01-30

CVE-2022-40134: An information leak vulnerability in the SMI Set BIOS Password SMI Handler in some Lenovo models may allow an attacker with local access and elevated…

medium4.4CVSS 3.1
AVLACLPRHUINSUCHINAN
An information leak vulnerability in the SMI Set BIOS Password SMI Handler in some Lenovo models may allow an attacker with local access and elevated privileges to read SMM memory.

Affected

337 ranges· showing 25
VendorProductVersion rangeFixed in
lenovobios
lenovoideacentre_3-07ada05_firmware
lenovoideacentre_3-07imb05_firmware
lenovoideacentre_3_07iab7_firmware
lenovoideacentre_5-14acn6_firmware
lenovoideacentre_5-14are05_firmware
lenovoideacentre_5-14imb05_firmware
lenovoideacentre_5-14iob6_firmware
lenovoideacentre_510s-07icb_firmware
lenovoideacentre_510s-07icb_firmware
lenovoideacentre_510s-07ick_firmware
lenovoideacentre_5_14iab7_firmware
lenovoideacentre_a340-22igm_firmware
lenovoideacentre_a340-24igm_firmware
lenovoideacentre_c5-14imb05_firmware
lenovoideacentre_creator_5-14iob6_firmware
lenovoideacentre_g5-14amr05_firmware
lenovoideacentre_g5-14imb05_firmware
lenovoideacentre_gaming_5-14acn6_firmware
lenovoideacentre_gaming_5-14iob6_firmware
lenovoideacentre_gaming_5_17acn7_firmware
lenovoideacentre_gaming_5_17iab7_firmware
lenovolegion_c530-19icb_firmware
lenovolegion_t5-26iob6_firmware
lenovolegion_t5-28icb05_firmware